CVE-2025-58736: Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability
Inbox COM Objects (Global Memory) Remote Code Execution Vulnerability
Other sources
Use after free in Inbox COM Objects allows an unauthorized attacker to execute code locally.
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58736?
CVE-2025-58736 is a critical vulnerability that allows for remote code execution due to a use after free in Inbox COM Objects.
How do I fix CVE-2025-58736?
To fix CVE-2025-58736, apply the patches provided by Microsoft for your specific Windows or Windows Server version.
Which versions of Windows are affected by CVE-2025-58736?
CVE-2025-58736 affects multiple versions including Windows 11, Windows 10, and several versions of Windows Server 2008, 2012, 2016, and newer releases.
How does CVE-2025-58736 impact system security?
CVE-2025-58736 can allow unauthorized attackers to execute arbitrary code on affected systems, potentially leading to a complete system compromise.
What action should be taken if my system is vulnerable to CVE-2025-58736?
If your system is vulnerable to CVE-2025-58736, immediately apply the necessary security updates and patches to mitigate the risk.